WebRTC & DNS Leak Test
Find out whether your browser leaks your real IP through WebRTC and which DNS resolvers your traffic actually uses. Free, no signup.
One click runs two real probes: a WebRTC peer connection that lists every address your browser offers, and canary domain lookups that reveal every resolver your DNS traffic goes through.
Antybrowser profiles block these leaks by design
Every Antybrowser profile ships with WebRTC disabled and its own proxy, so WebRTC can't reach around your tunnel and DNS stays with the profile's network. Verify with this test, then isolate for real.
How it works
1. WebRTC probe
The page opens a real peer connection to public STUN servers and records every address your browser offers — public, local or relay.
2. DNS canary lookups
Unique random domains are resolved through your DNS chain; the authoritative server reports exactly which resolver answered.
3. Leak verdict
Anything that exposes an IP outside your tunnel, or extra resolvers outside your network, is flagged — with a shareable report.
Frequently asked questions
What is a WebRTC leak?
WebRTC (used by video calls and voice apps) can discover and broadcast your real public IP address — even when you are behind a VPN or proxy. If a site's JavaScript triggers WebRTC, your true IP may leak next to the proxy IP you wanted hidden.
What is a DNS leak?
A DNS leak happens when your domain lookups leave your VPN or proxy tunnel and go straight to your ISP's resolvers. Sites and observers can then see every domain you visit, even if your traffic itself is tunneled.
How does this leak test work?
The WebRTC check opens a real peer connection with public STUN servers and lists every address your browser offers. The DNS check resolves unique canary domains through your own resolver chain and reports which resolver IPs actually answered — the same technique dedicated leak-test sites use.
What should I do if a leak is detected?
Disable WebRTC in your browser or use a proxy-aware setup, and force DNS through your tunnel. Antybrowser profiles ship with WebRTC disabled by default and per-profile network isolation, so every profile's leaks stay contained.
Do you store the results?
Reports are kept for 30 days so you can share them, keyed by a salted hash of your IP. Only the probe results are stored — never your raw IP address or browsing activity.